| Electronic Components Datasheet Search |
|
ATECC508A Datasheet(PDF) 88 Page - Microchip Technology |
|
|
|||||||||||||||||||||||||||||
ATECC508A Datasheet(HTML) 88 Page - Microchip Technology |
|
88 / 109 page ![]() 1. External Mode The public key to be used is an input to the command. Prior to this command being run, the message should be written to TempKey using the Nonce command. In this mode the device merely accelerates the public key computation and returns a boolean result. 2. Stored Mode The public key to be used is found in the KeyID EEPROM slot. The message should have been previously stored in TempKey. If the following configuration checks for the public key at KeyID succeed, the public key verification computation is performed and a boolean result is returned to the system; otherwise, the command returns an execution error. – If KeyConfig.PubInfo is one, then the key must have been previously validated using the Verify command. – If KeyConfig.ReqAuth is set, then a previous key authorization must have been performed with either the Verify or CheckKey commands based on the key in KeyConfig.AuthKey. – If KeyConfig.KeyType indicates an ECC curve not supported by the device or indicates “Not an ECC Key,” then this command will fail. – This mode is used to set the key authorization information when the KeyConfig.AuthKey field within some other slot points to KeyID. If the verification succeeds, then an internal AuthValid flag will be set and KeyID internally retained in AuthKeyID. See Section Authorized Keys. – Data1 and Data2 must be 32 bytes, and Data3 & Data4 should be zero length. 3. Validate and Invalidate Modes The Validate and Invalidate modes are used to validate or invalidate the public key stored in the EEPROM at KeyID. The signature is input to the device and a partial message should be in TempKey. The verifying public key is found at SlotConfig.ReadKey, and the ECDSA Verify message is composed of KeyID and TempKey, formatted as noted below. Only KeyIDs 8 – 15 can be validated; therefore, this command will return an error if KeyID is 0 – 7. – If the ECC verification passes, then the most significant four bits of the first byte of Block 0 of the public key at KeyID will be set to 0x5 for Validate and 0xA for Invalidate. See Section ECC Key Formatting. – Key (in)validation takes place regardless of the state of the LockValue byte and/or the SlotLocked bit corresponding to this slot. – If the X509format<KeyConfig.X509id> byte corresponding to the specified key is non-zero, then the Verify command will return an error. Key invalidation works in conjunction with WriteConfig(Bit 12) as shown in Section Write Permissions to control update of public keys by limiting the options for a fraudulent write leading to a denial of service. Key Invalidation is supported on the ATECC508A only. OtherData<17>.Bit0 represents the validity of the key being acted on. It must be a ‘0’ (invalid) to permit the Validation operation, or a ‘1’ (valid) to permit the Invalidation operation. If OtherData<17>.Bit0 does not match Mode<2> in Validate/Invalidate modes, then this command will return an error. Data1 and Data2 sizes are the same as stored mode. 4. ValidateExternal Mode The ValidateExternal mode is used to validate the public key stored in the EEPROM at KeyID when X.509 format certificates are to be used. The digest of the message must be TempKey. TempKey must have been generated using the SHA(Public) command, and the key for that computation must be the same as KeyID. The verifying public key is found at SlotConfig.ReadKey, and the ATECC508A Security Commands © 2017 Microchip Technology Inc. Datasheet Complete DS20005927A-page 88 |
|
Link URL |
| Does ALLDATASHEET help your business so far? [ DONATE ] |
About Alldatasheet | Advertisement | Contact us | Privacy Policy | Link to Datasheet | Link Exchange | Manufacturer List All Rights Reserved©Alldatasheet.com |
| Russian : Alldatasheetru.com | Korean : Alldatasheet.co.kr | Spanish : Alldatasheet.es | French : Alldatasheet.fr | Italian : Alldatasheetit.com Portuguese : Alldatasheetpt.com | Polish : Alldatasheet.pl | Vietnamese : Alldatasheet.vn Indian : Alldatasheet.in | Mexican : Alldatasheet.com.mx | British : Alldatasheet.co.uk | New Zealand : Alldatasheet.co.nz |
|
Family Site : ic2ic.com |
icmetro.com |